PT-2023-19717 · Unknown+6 · Gnu Screen+6
Manuel Andreas
·
Published
2023-02-03
·
Updated
2026-01-26
·
CVE-2023-24626
CVSS v3.1
6.5
Medium
| Vector | AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
GNU Screen versions through 4.9.0
Description
The issue allows local users to send a privileged SIGHUP signal to any PID, causing a denial of service or disruption of the target process. This occurs when GNU Screen is installed setuid or setgid, which is the default on platforms such as Arch Linux and FreeBSD.
Recommendations
For GNU Screen versions through 4.9.0, update to a version later than 4.9.0 to resolve the issue.
Exploit
Fix
DoS
Incorrect Permission
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Alt Linux
Astra Linux
Debian
Gnu Screen
Linuxmint
Red Os
Ubuntu